Please enable JavaScript.
Coggle requires JavaScript to display documents.
COMPLIANCE : LAW AND ETHICS - Coggle Diagram
COMPLIANCE : LAW AND ETHICS
ETHIC IN INFOSEC
Study on how human ought to act
employee lack in term of ethics
a set of rules we should live by
Foundation and framework
Descriptive ethics
study about what the people believes about morality
Applied ethics
focus on real world problem
Meta ethics
analytical ethic
came out with many question
Normative ethics
knows as moral theory
direct impact for human action, way of life should be like
Deontological ethics
still need to follow even we know the sequence
Professional Organization and their Codes of Conduct
codes of ethics can have a positive effect on an individuals judgement regarding computer use.
Association of Computing Machinery
organization that strongly promotes education and provides discounted membership for student
international information system security Certification Consortium
non-profit organization that provide security training and certificate
SANS
dedicate to protection information system
ISACA
Professional association with a focus on auditing, control and security
ISSA
to ensure the confidential availability integrity of an organization information system
Commandments of computer ethics
Thou shalt not snoop around in other peoples computer file
Thou shalt not use a computer to steal
thou shalt not interfere with other peoples computer work
Thou shalt not use a computer to bear false witness
Thou shalt not use a computer to harm other people
Deterring Unethical and Illegal Behavior
using policy, education and training, and technology as controls or safeguards in order to protect the organizations
3 general categories of unethical behavior that organizations and society should seek to eliminate
ignorance
accident
intent
condition of law and policies and their associated penalties
Probability of being caught
Probability of penalty being administered
fear of penalty
Ethical standard
Fairness or justice approach
we need to apply fairness in all situation
Common good approach
this action not give benefits to one individual but must give benefits to groups
Rights approach
Focus on respect human dignity
Virtue approach
deal with honesty and morality
utilitarian approach
when we made a decision, we will make sure our decision is the best one
INFORMATION SECURITY AND LAW
Type of law
Criminal law
Private law
a subset of civil law that encompasses family law, commercial law, and labor law
Civil Law
including contract law, employment law, family law and tort law
Public law
includes criminal law, administrative law and constitutional law